CVE Vulnerability Database
Search and browse 383,855 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-62429 | MEDIUM | 6.5 | — | Jul 28, 2026 | Accessing the vNUMA configuration data of a guest is still possible when domain destruction has already started. The cl... |
| CVE-2026-62428 | HIGH | 7.8 | — | Jul 28, 2026 | When grant-copy operations are processed, the respective grant may or may not already be in use by another operation (a ... |
| CVE-2026-62427 | HIGH | 8.8 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-62426 | HIGH | 8.8 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-62425 | MEDIUM | 5.5 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-62424 | MEDIUM | 5.5 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-62423 | MEDIUM | 5.5 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-49332 | HIGH | 8.5 | 0.3% | Jul 28, 2026 | A flaw was found in openshift/oauth-proxy. The proxy sets authenticated identity headers using only dash-variant keys (X... |
| CVE-2026-42495 | MEDIUM | 5.5 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-42494 | MEDIUM | 6.1 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-42493 | HIGH | 7.5 | — | Jul 28, 2026 | Addressing certain issues, in particular related to operations which may take excessively long and therefore would need ... |
| CVE-2026-42492 | HIGH | 7.5 | — | Jul 28, 2026 | Xenstore, to have an up-to-date picture of the entire system, wants to know of domains appearing and disappearing. To m... |
| CVE-2026-41874 | MEDIUM | 6.8 | 0.1% | Jul 28, 2026 | Quick.Cart stores hard-coded, plaintext admin credentials in a configuration file. This flaw allows attackers with acces... |
| CVE-2026-18047 | MEDIUM | 6.5 | — | Jul 28, 2026 | A flaw was found in Dogtag PKI's ACME responder where the web.xml security constraints use exact URL pattern matching fo... |
| CVE-2026-18038 | MEDIUM | 4.3 | — | Jul 28, 2026 | A flaw has been found in nextlevelbuilder GoClaw up to 3.13.2. Affected by this vulnerability is the function ExecTool.E... |
| CVE-2026-15393 | MEDIUM | 6.4 | — | Jul 28, 2026 | The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress... |
| CVE-2026-15016 | MEDIUM | 6.4 | — | Jul 28, 2026 | The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulnerab... |
| CVE-2026-4648 | MEDIUM | 6.8 | — | Jul 28, 2026 | Use of an insecure cryptographic algorithm in the cashless payment system using NFC wristbands from CasfID Servicios Tec... |
| CVE-2026-21047 | HIGH | 8.3 | 0.4% | Jul 28, 2026 | Out-of-bounds write in ImsService prior to SMR Jul-2026 Release 1 allows remote attackers to potentially execute arbitra... |
| CVE-2026-16774 | MEDIUM | 5.3 | — | Jul 28, 2026 | The Chatbot plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 8.5.9 via the ... |
| CVE-2026-16773 | MEDIUM | 5.3 | — | Jul 28, 2026 | The WPBot – AI ChatBot for Live Support, Lead Generation, AI Services plugin for WordPress is vulnerable to Sensitive In... |
| CVE-2026-15444 | MEDIUM | 4.9 | — | Jul 28, 2026 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to generic SQL Injection via the... |
| CVE-2026-15411 | MEDIUM | 5.3 | — | Jul 28, 2026 | The StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart plugin for ... |
| CVE-2026-15025 | HIGH | 7.5 | — | Jul 28, 2026 | The Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder plugin for WordPress is vulnerable to ... |
| CVE-2026-13440 | HIGH | 7.2 | — | Jul 28, 2026 | The StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart plugin for ... |
